On 2007/11/11 14:20, Ray Percival wrote: > On Nov 11, 2007, at 10:03 AM, Barry Miller wrote: >> Of course, if a bad guy _does_ get control of wireshark, he OWNS your >> network, but at least you're not totally rooted. Take your chances. >> > How so? Given that all it is a frontend to libpcap. And how does this not > apply to tcpdump?
tcpdump runs the scary code in a jail.